ZeroHour

CVE-2018-6380

CVSS 3.0
6.1 medium
EPSS
2%p75
Published
()
Modified
Description

In Joomla! before 3.8.4, lack of escaping in the module chromes leads to XSS vulnerabilities in the module system.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.